Saturday, June 03, 2023

Security Surprises On Firefox Quantum

This morning I've found an scaring surprise on my Firefox Quantum. Casually it was connected to a proxy when an unexpected connection came up, the browser  was connecting to an unknown remote site via HTTP and downloading a ZIP that contains an ELF shared library, without any type of signature on it.

This means two things

1) the owner of that site might spread malware infecting many many people.
2) the ISP also might do that.


Ubuntu Version:


Firefox Quantum version:



The URL: hxxp://ciscobinary.openh264.org/openh264-linux64-0410d336bb748149a4f560eb6108090f078254b1.zip




The zip contains these two files:
  3f201a8984d6d765bc81966842294611  libgmpopenh264.so
  44aef3cd6b755fa5f6968725b67fd3b8  gmpopenh264.info

The info file:
  Name: gmpopenh264
  Description: GMP Plugin for OpenH264.
  Version: 1.6.0
  APIs: encode-video[h264], decode-video[h264]

So there is a remote codec loading system that is unsigned and unencrypted, I think is good to be aware of it.

In this case the shared library is a video decoder, but it would be a vector to distribute malware o spyware massively, or an attack vector for a MITM attacker.




More information


  1. Hacker Search Tools
  2. Hacker Tools Mac
  3. Pentest Automation Tools
  4. Underground Hacker Sites
  5. Pentest Tools Online
  6. Hack Tools Github
  7. Hacking App
  8. Hack Tools
  9. Hack Tools
  10. Pentest Recon Tools
  11. Hacking Tools For Beginners
  12. What Are Hacking Tools
  13. Pentest Tools List
  14. Hack Tools
  15. Pentest Tools Bluekeep
  16. What Is Hacking Tools
  17. Hacker
  18. Pentest Tools For Android
  19. Kik Hack Tools
  20. Hacking Apps
  21. Best Hacking Tools 2020
  22. Hack Tools For Mac
  23. Pentest Tools For Android
  24. Hacker Tools For Pc
  25. Hack Tools For Mac
  26. Free Pentest Tools For Windows
  27. Pentest Tools For Mac
  28. Hacking Tools Name
  29. Pentest Tools Subdomain
  30. Growth Hacker Tools
  31. Pentest Tools Github
  32. Hack Tool Apk No Root
  33. Hacker Tools For Pc
  34. Tools Used For Hacking
  35. Hacking Tools Usb
  36. Hack Tools For Games
  37. World No 1 Hacker Software
  38. Android Hack Tools Github
  39. Pentest Tools Review
  40. Hacker Tools Github
  41. Android Hack Tools Github
  42. Nsa Hack Tools Download
  43. New Hacker Tools
  44. Black Hat Hacker Tools
  45. Hacker
  46. Ethical Hacker Tools
  47. How To Install Pentest Tools In Ubuntu
  48. Hack Tools Mac
  49. How To Hack
  50. Hacker Tools For Ios
  51. Hacker Tools Apk Download
  52. Hacker Tools Online
  53. Hacker Hardware Tools
  54. Pentest Tools For Windows
  55. What Is Hacking Tools
  56. Hack Tools
  57. Pentest Tools
  58. Hacking Tools 2020
  59. Hack Tools
  60. Android Hack Tools Github
  61. Hacker Tools Free Download
  62. What Is Hacking Tools
  63. Pentest Tools Online
  64. Hacker Techniques Tools And Incident Handling
  65. Hackrf Tools
  66. Hacker Tools Free Download
  67. Tools For Hacker
  68. Hacker Search Tools
  69. Wifi Hacker Tools For Windows
  70. Pentest Tools Windows
  71. Hacker Hardware Tools
  72. Github Hacking Tools
  73. Hacking Tools Windows
  74. Hackers Toolbox
  75. New Hack Tools
  76. Pentest Tools For Android
  77. Hacking Tools Github
  78. Pentest Tools Nmap
  79. Hackers Toolbox
  80. Hacking Tools For Beginners
  81. Pentest Tools Framework
  82. Pentest Tools Linux
  83. Pentest Tools Open Source
  84. Hack Tools Github
  85. Hack Tools 2019
  86. Pentest Tools Free
  87. Pentest Tools Nmap
  88. Hacker Security Tools
  89. Hacking Tools For Windows
  90. Hack App
  91. Pentest Tools For Mac
  92. Hacking Tools Usb
  93. Computer Hacker
  94. Hacker Tools Windows
  95. Hacking Apps
  96. Pentest Tools Free
  97. Nsa Hack Tools Download
  98. Hacker Tools Linux
  99. Hacking Tools For Windows Free Download
  100. Hack Tool Apk No Root
  101. Pentest Tools For Mac
  102. Bluetooth Hacking Tools Kali
  103. How To Install Pentest Tools In Ubuntu
  104. Hacking Tools Free Download
  105. Hackrf Tools
  106. Hacking Tools Download
  107. Pentest Tools Online
  108. Hacker Tools Windows
  109. Usb Pentest Tools
  110. Hacker Tools Apk
  111. World No 1 Hacker Software
  112. What Is Hacking Tools
  113. Hacker Tools Github
  114. How To Hack
  115. Hack Tools For Games
  116. Top Pentest Tools
  117. Hack Tool Apk
  118. Hacker Tools Software
  119. Hack Tools Mac
  120. Ethical Hacker Tools
  121. Hack Tools Github
  122. Hacking Tools 2020
  123. Hacking App
  124. Pentest Tools Android
  125. Pentest Tools Subdomain
  126. Hacking Tools Github
  127. Pentest Tools Apk
  128. Hack Rom Tools
  129. Hack Apps
  130. Pentest Box Tools Download
  131. Hack Tools For Ubuntu
  132. Top Pentest Tools
  133. Best Hacking Tools 2020
  134. Hacking Tools 2019
  135. Pentest Box Tools Download
  136. Hacker Hardware Tools
  137. Pentest Tools Open Source
  138. Underground Hacker Sites
  139. Pentest Tools Find Subdomains
  140. Kik Hack Tools
  141. Pentest Tools For Android
  142. Pentest Tools Github
  143. Hacking App
  144. How To Install Pentest Tools In Ubuntu
  145. Best Pentesting Tools 2018
  146. Pentest Tools Linux
  147. Hacking Apps
  148. Hack Tools For Games
  149. Pentest Box Tools Download
  150. Top Pentest Tools

DSniff


"dsniff is a collection of tools for network auditing and penetration testing. dsniff, filesnarf, mailsnarf, msgsnarf, urlsnarf, and webspy passively monitor a network for interesting data (passwords, e-mail, files, etc.). arpspoof, dnsspoof, and macof facilitate the interception of network traffic normally unavailable to an attacker (e.g, due to layer-2 switching). sshmitm and webmitm implement active monkey-in-the-middle attacks against redirected SSH and HTTPS sessions by exploiting weak bindings in ad-hoc PKI." read more...

Website: http://www.monkey.org/~dugsong/dsniff/

Related word


  1. Tools For Hacker
  2. Pentest Tools Url Fuzzer
  3. Best Hacking Tools 2020
  4. Hacker Tools
  5. How To Install Pentest Tools In Ubuntu
  6. New Hacker Tools
  7. Tools Used For Hacking
  8. Hacker Tools Mac
  9. Hacking Tools For Windows
  10. Pentest Tools Port Scanner
  11. Hack Tools Download
  12. Hack Tools For Games
  13. Pentest Tools Framework
  14. Pentest Tools For Mac
  15. How To Hack
  16. Easy Hack Tools
  17. Bluetooth Hacking Tools Kali
  18. Hacker Tools Apk
  19. Hacker Security Tools
  20. Hack Tools 2019
  21. Pentest Tools For Android
  22. Underground Hacker Sites
  23. New Hacker Tools
  24. Pentest Tools List
  25. Hack Tools Online
  26. Hak5 Tools
  27. Hacking Tools For Pc
  28. Pentest Tools Url Fuzzer
  29. Hack Tools For Games
  30. Hacker Tools Mac
  31. Tools 4 Hack
  32. Pentest Tools Url Fuzzer
  33. Usb Pentest Tools
  34. Hacker Tools Apk Download
  35. Hacker Tools Apk Download
  36. Free Pentest Tools For Windows
  37. What Are Hacking Tools
  38. Pentest Tools Online
  39. Hacker Security Tools
  40. Hack Tools For Pc
  41. Hacking Tools Download
  42. Pentest Tools Review
  43. Wifi Hacker Tools For Windows
  44. Pentest Tools Tcp Port Scanner
  45. Hack Tools For Games
  46. Pentest Tools For Android
  47. How To Hack
  48. Hack Tools 2019
  49. How To Hack
  50. Hacking Tools For Windows
  51. Hacker Tools Online
  52. Hack App
  53. How To Make Hacking Tools
  54. Pentest Tools Github
  55. Hacking Tools 2019
  56. Hacking Tools 2020
  57. Underground Hacker Sites
  58. Best Hacking Tools 2019
  59. Hacker Tools Hardware
  60. Pentest Reporting Tools
  61. Pentest Tools Linux
  62. Hack Tools For Games
  63. Hack Tools For Pc
  64. Termux Hacking Tools 2019
  65. Kik Hack Tools
  66. Hack Tools For Windows
  67. Top Pentest Tools
  68. Hacking App
  69. New Hack Tools

One Reason Why InfoSec Sucked In The Past 20 Years - The "Security Tips" Myth

From time to time, I get disappointed how much effort and money is put into securing computers, networks, mobile phones, ... and yet in 2016 here we are, where not much has changed on the defensive side. There are many things I personally blame for this situation, and one of them is the security tips.

The goal of these security tips is that if the average user follows these easy to remember rules, their computer will be safe. Unfortunately, by the time people integrate these rules into their daily life, these rules either become outdated, or these rules were so oversimplified that it was never true in the first place. Some of these security tips might sound ridiculous to people in InfoSec nowadays, but this is exactly what people still remember because we told them so for years.

PDF is safe to open

This is an oldie. I think this started at the time of macro viruses. Still, people think opening a PDF from an untrusted source is safer than opening a Word file. For details why this is not true, check: https://www.cvedetails.com/vulnerability-list/vendor_id-53/product_id-497/Adobe-Acrobat-Reader.html
On an unrelated note, people still believe PDF is integrity protected because the content cannot be changed (compared to a Word document).
Image stolen from Kaspersky

Java is secure

One of the best ones. Oracle started marketing Java as a safe language, where buffer overflows, format strings and pointer-based vulnerabilities are gone. Unfortunately, they forgot to tell the world that instead of "unsafe programs developed by others" they installed their unsafe program on 3 billion devices. 

Stay away from rogue websites and you will be safe

This is a very common belief I hear from average people. "I only visit some trusted news sites and social media, I never visit those shady sites." I have some bad news. At the time of malvertising and infected websites, you don't have to visit those shady sites anymore to get infected.

Don't use open WiFi

I have a very long explanation of why this makes no sense, see here. Actually, the whole recommendation makes no sense as people will connect to public WiFis, no matter what we (InfoSec) recommend.

The password policy nightmare

Actually, this topic has been covered by myself in two blog posts, see here and here. Long story short: use a password manager and 2-factor authentication wherever possible. Let the password manager choose the password for you. And last but not least, corporate password policy sux.

Sites with a padlock are safe

We tell people for years that the communication with HTTPS sites are safe, and you can be sure it is HTTPS by finding a randomly changing padlock icon somewhere next to the URL. What people hear is that sites with padlocks are safe. Whatever that means. The same goes for WiFi - a network with a padlock is safe.

Use Linux, it is free from malware

For years people told to Windows users that only if they would use Linux they won't have so much malware. Thanks to Android, now everyone in the world can enjoy malware on his/her Linux machine.

OSX is free from malware

It is true that there is significantly less malware on OSX than on Windows, but this is an "economical" question rather than a "security" one. The more people use OSX, the better target it will become. Some people even believe they are safe from phishing because they are using a Mac!

Updated AV + firewall makes me 100% safe

There is no such thing as 100% safe, and unfortunately, nowadays most malware is written for PROFIT, which means it can bypass these basic protections for days (or weeks, months, years). The more proactive protection is built into the product, the better!

How to backup data

Although this is one of the most important security tips which is not followed by people, my problem here is not the backup data advise, but how we as a community failed to provide easy to use ways to do that. Now that crypto-ransomware is a real threat to every Windows (and some OSX) users, even those people who have backups on their NAS can find their backups lost. The only hope is that at least OSX has Time Machine which is not targeted yet, and the only backup solution which really works.
The worst part is that we even created NAS devices which can be infected via worms ...

Disconnect your computer from the Internet when not used

There is no need to comment on this. Whoever recommends things like that, clearly has a problem.

Use (free) VPN to protect your anonimity

First of all. There is no such thing as free service. If it is free, you are the service. On another hand, a non-free VPN can introduce new vulnerablities, and they won't protect your anonymity. It replaces one ISP with another (your VPN provider). Even TOR cannot guarantee anonymity by itself, and VPNs are much worse.

The corporate "security tips" myth

"Luckily" these toxic security tips have infected the enterprise environment as well, not just the home users.

Use robots.txt to hide secret information on public websites

It is 2016 and somehow web developers still believe in this nonsense. And this is why this is usually the first to check on a website for penetration testers or attackers.

My password policy is safer than ever

As previously discussed, passwords are bad. Very bad. And they will stick with us for decades ...

Use WAF, IDS, IPS, Nextgen APT detection hibber-gibber and you will be safe

Companies should invest more in people and less into magic blinking devices.

Instead of shipping computers with bloatware, ship computers with exploit protection software
Teach people how to use a password safe
Teach people how to use 2FA
Teach people how to use common-sense

Conclusion

Computer security is complex, hard and the risks change every year. Is this our fault? Probably. But these kinds of security tips won't help us save the world. 

More articles


  1. Pentest Tools Alternative
  2. Pentest Tools
  3. Computer Hacker
  4. Hacker Hardware Tools
  5. Hack Tools Pc
  6. Hacker Tools 2019
  7. Pentest Tools Android
  8. Hacking Tools Windows
  9. Hacking Tools Windows
  10. Install Pentest Tools Ubuntu
  11. Hack Tools 2019
  12. Pentest Tools Nmap
  13. Hack Tools Github
  14. Nsa Hack Tools Download
  15. Pentest Tools For Android
  16. Github Hacking Tools
  17. Pentest Tools Windows
  18. Hacker Techniques Tools And Incident Handling
  19. Hack Tools Pc
  20. Pentest Tools Open Source
  21. Hacking Tools For Kali Linux
  22. Wifi Hacker Tools For Windows
  23. Hacker Tools Free Download
  24. Pentest Tools Free
  25. Install Pentest Tools Ubuntu
  26. Pentest Box Tools Download
  27. Pentest Tools For Ubuntu
  28. How To Make Hacking Tools
  29. How To Hack
  30. Hacker Tools Hardware
  31. Hacking Tools For Kali Linux
  32. Hacker Tools For Mac
  33. Pentest Tools Github
  34. Pentest Recon Tools
  35. Blackhat Hacker Tools
  36. Hacker Security Tools
  37. Hacker Tools Windows
  38. Hack Tool Apk
  39. Hacking Tools Download
  40. Pentest Tools Windows
  41. Pentest Tools Github
  42. Hack Apps
  43. Hacker Tools For Mac
  44. Hacking Tools For Windows
  45. Pentest Automation Tools
  46. Hacking Tools Windows 10
  47. Pentest Tools Review
  48. Pentest Tools For Windows
  49. Kik Hack Tools
  50. Hacker Tools Software
  51. Hacker Tools For Pc
  52. Pentest Tools Review
  53. Pentest Tools Open Source
  54. What Is Hacking Tools
  55. Hack Tools For Ubuntu
  56. Hack Tools For Mac
  57. Black Hat Hacker Tools
  58. Hacker Tools
  59. Black Hat Hacker Tools
  60. Hack Rom Tools
  61. Hak5 Tools
  62. Hack Tools 2019
  63. Github Hacking Tools
  64. How To Make Hacking Tools
  65. Hak5 Tools
  66. Hacking Tools For Games
  67. How To Install Pentest Tools In Ubuntu
  68. Nsa Hack Tools
  69. Hacking Tools Name
  70. Pentest Tools Nmap
  71. Pentest Tools For Android
  72. Hacking Tools For Beginners
  73. Hacking Tools Usb
  74. Pentest Tools Apk
  75. Hack Tools Online
  76. Blackhat Hacker Tools
  77. Easy Hack Tools
  78. Hacker Tools Mac
  79. Hack Tools For Games
  80. Hacker Tools For Ios
  81. New Hacker Tools
  82. Hacking Tools For Games
  83. Pentest Tools Review

Friday, June 02, 2023

CEH: 10 Hacking Tools For Hackers


There are a lot of hacking tools available over the internet but mostly we need some of them. In this blog you'll learn about hacking tools which are typically used in the world of hacking by penetration testers.

SmartWhois

SmartWhois is an information-gathering program that allows you to find all available information about an IP address, hostname, or domain, including country, state or province, city, name of the network provider, administrator, and technical support contact information. SmartWhois is a graphical version of the basic Whois program.

SocksChain

SocksChain is a tool that gives a hacker the ability to attack through a chain of proxy servers. The main purpose of doing this is to hide the hacker's real IP address and therefore minimize the chance of detection. When a hacker works through several proxy servers in series, it's much harder to locate the hacker. Tracking the attacker's IP address through the logs of several proxy servers is complex and tedious work. If one of the proxy servers' log files is lost or incomplete, the chain is broken, and the hacker's IP address remains anonymous.

NeoTrace, VisualRoute, and VisualLookout

NeoTrace, VisualRoute, and VisualLookout are all packet-tracking tools with a GUI or visual interface. They plot the path the packets travel on a map and can visually identify the locations of routers and other internet working devices. These tools operate similarly to traceroute and perform the same information gathering; however, they provide a visual representation of the results.

Visualware's eMailTrackerPro

Visualware's eMailTrackerPro ( www.emailtrackerpro.com/ ) and MailTracking ( http://mailtracking.com/ ) are tools that allow an ethical hacker to track email messages. When you use these tools to send an email, forward an email, reply to an email, or modify an email, the resulting actions and tracks of the original email are logged. The sender is notified of all actions performed on the tracked email by an automatically generated email.

IPEye

IPEye is a TCP port scanner that can do SYN, FIN, Null, and XMAS scans. It's a command line tool.
IPEye probes the ports on a target system and responds with closed, reject, drop, or open. Closed means there is a computer on the other end, but it doesn't listen at the port. Reject means a firewall is rejecting the connection to the port (sending a reset back). Drop means a firewall is dropping everything to the port, or there is no computer on the other end. Open means some kind of service is listening at the port. These responses help a hacker identify what type of system is responding.

IPSecScan

IPSecScan is a tool that can scan either a single IP address or a range of addresses looking for systems that are IPSec enabled that means the system has IPSec enabled while disabled means that it either has IPSec disabled, the compatibility issue or the configuration issue that not reveal to you that it has IPSec enabled. Indeterminable means that the scanner isn't sure if IPSec is enabled or disabled.

Icmpenum

Icmpenum uses not only ICMP Echo packets to probe networks, but also ICMP Timestamp and ICMP Information packets. Furthermore, it supports spoofing and sniffing for reply packets. Icmpenum is great for scanning networks when the firewall blocks ICMP Echo packets but fails to block Timestamp or Information packets.

SNMP Scanner

SNMP Scanner allows you to scan a range or list of hosts performing ping, DNS, and Simple Network Management Protocol (SNMP) queries. This tool helps you to find out the current information about the device of SNMP nodes in the given network.

hping2 tool

The hping2 tool is notable because it contains a host of other features besides OS fingerprinting such as TCP, User Datagram Protocol (UDP), ICMP, and raw-IP ping protocols, traceroute mode, and the ability to send files between the source and target system.

THC-Scan, PhoneSweep, and TeleSweep

THC-Scan, PhoneSweep, and TeleSweep are tools that identify phone numbers and can dial a target to make a connection with a computer modem. These tools generally work by using a predetermined list of common usernames and passwords in an attempt to gain access to the system. Most remote-access dial-in connections aren't secured with a password or use very rudimentary security.
Continue reading